
securesystemslib
Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU
authenticationcryptographyhardware-security+1
54

Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Thin TypeScript + zero-dep Python client and recipes to gate high-risk actions behind a payload-bound passkey approval.

JSON Web Token (JWT) encoding and decoding for Kit

Proof-of-concept exploit demonstrating a GitHub OAuth token-stealing vulnerability via crafted developer workflow triggers, enabling unauthorized…